๐ง๐ช
cmbplf
2026-05-26 23:11:13
(1 week ago)
638 limiting connections by zone (10m59s)
DDoS Attack
๐ซ๐ท
MatStef132
2026-05-22 14:04:39
(1 week ago)
MatShield L7: blocked on mathost.eu (ua-quarantined)
Bad Web Bot
๐ท๐ด
Fn4ticHz
2026-05-10 11:48:52
(3 weeks ago)
Repeated DDoS targeted -- ZeroGuard X ManagedSRV
DDoS Attack
Exploited Host
๐ฎ๐น
VHosting
2026-04-26 08:43:11
(1 month ago)
Detected attack and reported by a human
Brute-Force
Web App Attack
SSH
DDoS Attack
Exploited Host
Bad Web Bot
๐ฎ๐น
VHosting
2026-04-10 05:53:41
(1 month ago)
Detected attack and reported by a human
Brute-Force
Web App Attack
SSH
DDoS Attack
Exploited Host
Bad Web Bot
๐บ๐ธ
quilla
2026-03-30 20:13:00
(2 months ago)
Botnet infected device observed in honeypot (Vector: TCP HANDSHAKE ATTACK)
DDoS Attack
๐ฆ๐ฑ
cheatmaster.store
2026-02-27 01:42:21
(3 months ago)
Automated report: This IP address has been identified as an active public open proxy.
Classification ...
show more
Automated report: This IP address has been identified as an active public open proxy.
Classification: Open Proxy | Spoofing | VPN/Anonymizer | Bad Web Bot.
Country: Pakistan
Threat level: High. This host is listed across multiple public proxy databases and poses a risk of abuse, credential stuffing, scraping, and spoofed traffic.
Reported by automated threat intelligence pipeline. Do not whitelist without manual verification.
show less
Web Spam
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-09 08:05:28
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 116.0.54.25 (channelninetytwo2-smtp.super.net.p ...
show more
(mod_security) mod_security (id:225170) triggered by 116.0.54.25 (channelninetytwo2-smtp.super.net.pk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 09 04:05:19.436893 2025] [security2:error] [pid 628694:tid 628722] [client 116.0.54.25:62944] [client 116.0.54.25] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.killasgarage.bike|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.killasgarage.bike"] [uri "/wp-json/wp/v2/users/1"] [unique_id "aB23Pw9tpX-vvNxfUmiffwAAANY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-08 07:58:18
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 116.0.54.25 (channelninetytwo2-smtp.super.net.p ...
show more
(mod_security) mod_security (id:225170) triggered by 116.0.54.25 (channelninetytwo2-smtp.super.net.pk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 08 02:58:12.104028 2025] [security2:error] [pid 12052:tid 12052] [client 116.0.54.25:37848] [client 116.0.54.25] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.artbytracyjane.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.artbytracyjane.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "Z34wFDUj8OVZI9gu8M7QkQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-24 14:24:34
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 116.0.54.25 (channelninetytwo2-smtp.super.net.p ...
show more
(mod_security) mod_security (id:225170) triggered by 116.0.54.25 (channelninetytwo2-smtp.super.net.pk): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 24 09:24:28.908806 2024] [security2:error] [pid 14570:tid 14570] [client 116.0.54.25:27702] [client 116.0.54.25] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.newdirectionsinmusic.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.newdirectionsinmusic.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "Z2rEHLcdGdmjMXSt8g71-wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2024-08-10 14:03:25
(1 year ago)
116.0.54.25 - - [10/Aug/2024:17:03:23 +0300] "GET /wp-login.php HTTP/1.1" 404 2617 "-" "Mozilla/5.0 ...
show more
116.0.54.25 - - [10/Aug/2024:17:03:23 +0300] "GET /wp-login.php HTTP/1.1" 404 2617 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like Gecko"
116.0.54.25 - - [10/Aug/2024:17:03:24 +0300] "GET /xmlrpc.php HTTP/1.1" 404 366 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like Gecko"
...
show less
Web App Attack